Source · DiggingBeagle record

Mandiant AI Risk and Resilience Report 2026 - Case study 1

Primary Google Cloud/Mandiant report documenting an intrusion at an unnamed SaaS provider in which an attacker hijacked an active AI coding-assistant session, introduced poisoned software through the assistant's recommendation path, harvested GitHub OAuth tokens and spread Shai-Hulud across about 100 internal repositories.

Each support, contradiction or context label applies to a cited Claim, not to a whole Case.

Source record

Primary Google Cloud/Mandiant report documenting an intrusion at an unnamed SaaS provider in which an attacker hijacked an active AI coding-assistant session, introduced poisoned software through the assistant's recommendation path, harvested GitHub OAuth tokens and spread Shai-Hulud across about 100 internal repositories.

Read the original source ↗

Claim-level citations (5)

Cite this record

DiggingBeagle. “Mandiant AI Risk and Resilience Report 2026 - Case study 1.” https://diggingbeagle.com/sources/mandiant-ai-risk-and-resilience-report-2026-case-study-1/

Citation guidance

Why this archive exists

The source matters after the headline fades.

DiggingBeagle is a non profit research project documenting AI security incidents, agent failures, vulnerabilities and AI-assisted operations. A case keeps its claims beside the sources that support, contest or limit them. Later updates stay visible, so a reader can see when the account changed.

We publish case reconstructions, dated reporting and analysis across records. Each has a different evidentiary role. About the project and our methodology explain how the work is reviewed.